Novel attack against virtually all VPN apps neuters their entire purpose

TunnelVision vulnerability has existed since 2002 and may already be known to attackers.

https://arstechnica.com/security/2024/05/novel-attack-against-virtually-all-vpn-apps-neuters-their-entire-purpose/

Reply to this note

Please Login to reply.

Discussion

ip address is bugging me!

hmm wonder how router level vpns are affected, maybe i missed it in the article

deflating news nonetheless

Quote:

"The researchers believe it affects all VPN applications when they’re connected to a hostile network and that there are no ways to prevent such attacks except when the user's VPN runs on Linux or Android. They also said their attack technique may have been possible since 2002 and may already have been discovered and used in the wild since then."

Windows and Mac OS/iOS sucks, okay?

USE #LINUX!

#tech #privacy

nostr:nevent1qqs82g9j8tk8479dfmdcj9e7ux4zchxfnsmet56vsumu379mlqevahgprdmhxue69uhhyetvv9ujumn0wd68ytnyd9ex2cm5dae8jq3qlnms53w04qt742qnhxag5d6awy7nz6055flnmjkr6jg39hm86dlqxpqqqqqqzwu4m7r

Does this mean that an attacker could reroute VPN traffic in a public hotspot?

What do you think about using public hotspots + VPN in this context?